|
control enhancementMA-4(3)
Comparable Security and Sanitization (MA-4(3))
Require that nonlocal maintenance and diagnostic services be performed from a system that implements a security capability comparable to the capability implemented on the system being serviced; or Remove the component to be serviced from the system prior to nonlocal maintenance or diagnostic services; sanitize the component (for organizational information); and after the service is performed, inspect and sanitize the component (for potentially malicious software) before reconnecting the componen
Security Baselines
HIGHLOWMODERATE
maintenancesystem-maintenanceenhancement
Why These Connect
Maps To1
These are equivalent or closely aligned requirements in other frameworks.
Enhances1
These enhancements add specific capabilities or refinements to the base control.
Baselined In1
This control is included in the linked security baseline (LOW, MODERATE, or HIGH).
Cross-Framework Mappings(1)
ISO 27001ISO/IEC 27001:20221 mappingFinal
NIST OLIR informative reference — SP 800-53 Rev 5 to ISO/IEC 27001:2022